PHP.Invision.Power.Board.Multiple.XSS

description-logoDescription

It indicates an attacker is attempting a Cross Site Scripting attack against Invision Power Board. Multiple vulnerabilities exist in Invision Power Services that could lead to the execution of arbitrary code because of a lack of input validation in the "c", "showtopic", "f", "showuser", and "username" parameters.

affected-products-logoAffected Products

Invision Power Services Invision Board 1.3 Final

Impact logoImpact

Compromise of the affected system.

recomended-action-logoRecommended Actions

Apply appropriate patch from the vendor or Upgrade to non-vulnerable version if available.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)